Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Tokio Marine HCC

Principal DFIR Consultant

Tokio Marine HCC

. Support recruitment and development of a high-performing DFIR team .

Posted 10/6/2026full-timeRemote • United StatesLead💰 $122,300 - $269,500 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Digital Forensics and Incident Response (DFIR) management, including leading teams, developing operating procedures, and conducting complex investigations. Proficient in cybersecurity strategy, compliance requirements, and effective communication of technical concepts.

Highest-signal resume keywords
Digital ForensicsIncident Response ManagementTeam LeadershipCybersecurity StrategyScripting Skills

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Digital ForensicsIncident ResponseSecurity InvestigationsScripting in PowerShellScripting in BashScripting in PythonScripting in GoNetwork ForensicsMalware AnalysisMemory Forensics
Soft Skills
Excellent CommunicationLeadership AbilitiesOrganizational SkillsAnalytical SkillsMentoring
Tools & Technologies
ELKAxiomEncaseX-WaysSIFTFTKVolatilityDefenderSentinelOneCrowdStrike
Industry Keywords
CybersecurityCompliance RequirementsLegal FrameworksNIST CSFPCICloud SecurityAWSAzureMicrosoft 365GCP

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityGoogle Cloud PlatformLinuxPythonGo

About the role

Key responsibilities & impact
  • Support recruitment and development of a high-performing DFIR team
  • Develop and maintain DFIR operating procedures and best practices
  • Build and maintain insured/carrier relationships
  • Mentor a growing DFIR team and foster continuous learning
  • Act as Incident Commander during cyber incidents
  • Conduct client scoping calls, develop resolution roadmaps, and provide initial threat triage
  • Tailor response strategies to business risks and compliance requirements
  • Communicate complex cybersecurity concepts internally and externally
  • Lead incident response through triage, threat assessment, containment, eradication, and recovery
  • Lead case teams, assign tasks, delegate responsibilities, and oversee quality control
  • Develop and maintain incident response plans
  • Conduct post-incident analysis, identify root causes, and implement preventive measures
  • Track emerging cyber threats, Tactics Techniques and Procedures, and Indicators of Compromise
  • Provide expert guidance on digital forensics methodologies, evidence collection, analysis, and reporting
  • Conduct complex investigations of system logs, network traffic, and endpoint data
  • Identify new business opportunities and expand DFIR service offerings
  • Contribute to cybersecurity strategy, pricing models, service packages, and marketing initiatives
  • Collaborate with TMHCC-CPLG security teams to provide holistic cybersecurity solutions
  • Develop organizational plans, coordinate resources, communicate results, write reports or contractual documents, and present briefings
  • Comply with corporate policies and procedures
  • Develop innovative ways to improve financials

Requirements

What you’ll need
  • Minimum 4 year / bachelor’s degree in cyber security, Computer Science, Information Technology related degree or relevant professional work experience
  • 5 years former professional experience in leading and managing DFIR team and managing active cybersecurity engagements, including incident response, digital forensics investigations and working with insureds / clients and legal counsel
  • 2 years prior people management or team leadership roles
  • Proven track record of success in leading/building DFIR teams and managing complex cyber incidents
  • Experience conducting security investigations in Linux and Windows environments
  • Understanding of cloud platforms and security considerations within AWS, Azure, Microsoft 365, and GCP
  • Knowledge of digital forensic artifacts and tools such as ELK, Axiom, Encase, X-Ways, SIFT, FTK, Volatility, or open-source tools
  • Experience in Digital Forensics, Network Forensics, Memory Forensics, and/or Malware Analysis
  • Scripting skills in PowerShell, Bash, Python, and Go
  • Experience with EDR solutions including Defender, SentinelOne, and CrowdStrike
  • Strong understanding of legal and regulatory frameworks related to cybersecurity investigations such as PCI and NIST CSF
  • Excellent communication and presentation skills
  • Strong leadership abilities to motivate and mentor team members
  • Superior organizational and analytical skills; ability to manage multiple tasks simultaneously
  • Knowledge of industry changes, legal updates, and technical developments related to the Company’s business
  • Advanced proficiency and experience using Microsoft Office, including Excel, Access, PowerPoint, and Word
  • Ability to work overtime when required
  • Must be able to remain stationary for extended periods, move up to 10 pounds, operate a computer and other devices, and read a computer screen
  • Occasional travel up to 10% of time

Benefits

Comp & perks
  • Competitive compensation
  • Subsidized medical, prescription, dental, vision, basic life and disability insurance
  • Employee assistance program
  • Paid parental leave
  • 401(k) plan with Company matching contributions
  • Educational/loan assistance
  • At least 20 days of PTO, prorated for the current year based on date of hire, and/or paid sick leave (subject to local and state laws)
  • Approximately 11 paid holidays
  • One paid volunteer day
  • Two paid floating holidays
  • Professional growth opportunities
  • Global organization
  • Occasional travel up to 10% of time